Working Exploit Published for Pre-Auth RCE Flaw in AnyDesk Linux
Researchers demonstrate root-level remote code execution without user approval; patch available but vendor did not assign CVE

Key Takeaways
- A pre-authentication remote code execution vulnerability in AnyDesk Linux allows root-level compromise before connection approval.
- A working exploit has been published by security researchers, increasing the risk of active exploitation.
- AnyDesk released version 8.0.3 in June 2026 containing a fix, but the changelog provided no CVE or detailed security information.
Related Security News

Hackers Earn $1,262,000 for 98 Zero-Days at Pwn2Own Ireland 2026
At the Pwn2Own Ireland 2026 hacking contest, participants collected $1,262,000 in rewards after successfully exploiting 98 zero-day vulnerabilities across various platforms. The event, which concluded on October 9, 2026, saw researchers chain multiple exploits to compromise target systems, with prize money distributed according to exploit complexity and chain length. Organizers and participants are coordinating findings with affected vendors for CVE assignment and remediation.




